{\rtf1\ansi\ansicpg936\cocoartf1561\cocoasubrtf600
{\fonttbl\f0\fswiss\fcharset0 Helvetica;\f1\fnil\fcharset0 Menlo-Regular;\f2\fnil\fcharset134 PingFangSC-Regular;
\f3\fswiss\fcharset0 ArialMT;\f4\fnil\fcharset0 Verdana;\f5\fnil\fcharset134 SimSun;
}
{\colortbl;\red255\green255\blue255;\red0\green0\blue0;\red255\green255\blue255;\red153\green168\blue186;
\red32\green32\blue32;\red255\green255\blue255;\red0\green0\blue0;\red255\green255\blue255;}
{\*\expandedcolortbl;;\cssrgb\c0\c0\c0;\cssrgb\c100000\c100000\c100000;\cssrgb\c66275\c71765\c77647;
\cssrgb\c16863\c16863\c16863;\cssrgb\c100000\c100000\c100000;\csgray\c0;\csgray\c100000;}
\paperw11900\paperh16840\margl1440\margr1440\vieww25380\viewh7620\viewkind0
\pard\tx566\tx1133\tx1700\tx2267\tx2834\tx3401\tx3968\tx4535\tx5102\tx5669\tx6236\tx6803\pardirnatural\partightenfactor0

\f0\fs24 \cf2 \cb3 keytool  -genkey  -keystore  "/Users/menchao/Java/tomcat8/conf/key/testcedar.keystore"   -alias  testcedar   -keyalg   RSA   -validity  365\
\
\pard\tx560\tx1120\tx1680\tx2240\tx2800\tx3360\tx3920\tx4480\tx5040\tx5600\tx6160\tx6720\pardirnatural\partightenfactor0

\f1\fs22 \cf2 \CocoaLigature0 org.menchao
\f0\fs24 \CocoaLigature1 \
\
\
\pard\pardeftab720\sl440\partightenfactor0

\f1 \cf2 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4 keytool   -list  -v  -keystore  
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 /Users/menchao/Java/tomcat8/conf/key/testcedar.keystore
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4   -storepass  \'9319830205\'94\
\
\
keytool -alias 
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 testcedar
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4   -exportcert -keystore 
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 /Users/menchao/Java/tomcat8/conf/key/testcedar.keystore
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4  -file 
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 /Users/menchao/Java/tomcat8/conf/key
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4 /testMen.cer -storepass \'9319830205\'94\
\
\
sudo keytool  -import  -alias  
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 testcedar
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4   -keystore  /Library/Java/JavaVirtualMachines/jdk1.8.0_131.jdk/Contents/Home/jre/lib/security/cacerts   -file  
\f0 \kerning1\expnd0\expndtw0 \outl0\strokewidth0 /Users/menchao/Java/tomcat8/conf/key/
\f1 \expnd0\expndtw0\kerning0
\outl0\strokewidth0 \strokec4 testMen
\f2 .
\f1 cer  -trustcacerts \cf4 \cb5 -storepass    changeit\
\cf2 \cb3 \
\
\
1.
\f2 \'b4\'b4\'bd\'a8\'cb\'bd\'d4\'bf
\f1 \

\f3 \cf2 \cb6 \strokec2 openssl 
\f4 genrsa -out myCA.key 2048
\f1\fs22 \cf7 \cb8 \kerning1\expnd0\expndtw0 \CocoaLigature0 \outl0\strokewidth0 \
\

\fs24 \cf2 \cb3 \expnd0\expndtw0\kerning0
\CocoaLigature1 \outl0\strokewidth0 \strokec4 2.
\f5 \cf2 \cb6 \strokec2 \'b4\'b4\'bd\'a8
\f2 \'b8\'f9\'d6\'a4\'ca\'e9
\f3 \
\pard\pardeftab720\sl280\partightenfactor0

\fs28 \cf2 openssl req -x509  -new -key myCA.key -out  myCA.cer -days 730    \

\f2 \'c6\'e4\'d6\'d0
\f3 cn 
\f2 \'d2\'aa\'ca\'e4\'c8\'eb\'ce\'aa
\f3  
\f2 \'d3\'f2\'c3\'fb\'bb\'f2
\f3 ip
\f2 \'b5\'d8\'d6\'b7
\f1\fs22 \cf7 \cb8 \kerning1\expnd0\expndtw0 \CocoaLigature0 \outl0\strokewidth0 \
\
\
\pard\pardeftab720\sl440\partightenfactor0
3.
\f3\fs24 \cf2 \cb6 \expnd0\expndtw0\kerning0
\CocoaLigature1 openssl  
\f4 \cf2 \cb6 genrsa -out server.key 2048
\f1\fs22 \cf7 \cb8 \kerning1\expnd0\expndtw0 \CocoaLigature0 \
\
4. 
\f3\fs24 \cf2 \cb6 \expnd0\expndtw0\kerning0
\CocoaLigature1 \outl0\strokewidth0 \strokec2 openssl req -new -out server.req -key  server.key -subj /CN=
\f4 \cf2 \cb6 \outl0\strokewidth0 10.49.33.241
\f3 \cf2 \cb6 \outl0\strokewidth0 \strokec2 /CN=
\f4 \cf2 \cb6 \outl0\strokewidth0 10.49.33.241
\f3 \cf2 \cb6 \outl0\strokewidth0 \strokec2 /CN=localhost\cf2 \cb6 \outl0\strokewidth0 \

\f1 \cf2 \cb3 \outl0\strokewidth0 \strokec4 \
\pard\pardeftab720\sl300\partightenfactor0

\f4 \cf2 \cb6 \strokec2 5.
\f3 openssl x509 -req -in  server.req -out  server.cer -CAkey  myCA.key -CA  myCA.cer -days 36500-CAcreateserial -CAserial \'a0server.serial
\f4 \
\

\f1 \cf2 \cb3 \strokec4 \
\pard\pardeftab720\sl360\sa200\partightenfactor0

\f4 \cf2 \cb6 \strokec2 6.\'a0 
\f3 \cf2 \cb6 \outl0\strokewidth0 openssl  
\f4 \cf2 \cb6 \outl0\strokewidth0 \strokec2 pkcs12 -export -in server.cer -inkey server.key -out server.p12 -name "server"\
\pard\pardeftab720\sl300\partightenfactor0

\f1 \cf2 \cb3 \strokec4 \
7.
\f3 \cf2 \cb6 \strokec2 keytool -importkeystore-v -srckeystore\'a0  server.p12 -srcstoretype pkcs12 -srcstorepass 19830205 -destkeystore server.keystore  -deststoretype jks -deststorepass 19830205
\f1 \cf2 \cb3 \strokec4 \
}